<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Gaia Portal Certificate Imported but not working in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168469#M30482</link>
    <description>&lt;P&gt;You need to check certification chain in the browser first, i.e. in Chrome:&lt;/P&gt;
&lt;DIV id="tinyMceEditor_11cb00b9fef4aa3Kaspars_Zibarts_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 536px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19204i5407CF937DDDCBE4/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then check details for cert chain and see actual issuing root CA:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 561px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19202i2D4BDF577994A3DB/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Then compare it to your computer Root CA store:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 395px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19205i59BAD35DD2940C8E/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 967px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19206iF4C5EAD457D8E260/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Note that FF uses own trusted root CA store instead of windows OS, so you can google how to check that or else use Edge or Chrome&lt;/P&gt;</description>
    <pubDate>Fri, 20 Jan 2023 07:26:34 GMT</pubDate>
    <dc:creator>Kaspars_Zibarts</dc:creator>
    <dc:date>2023-01-20T07:26:34Z</dc:date>
    <item>
      <title>Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168248#M30436</link>
      <description>&lt;P&gt;Hello Mates!&lt;/P&gt;&lt;P&gt;I imported a certificate to Gaia Portal following the &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk97648" target="_self"&gt;&lt;SPAN&gt;sk97648&lt;/SPAN&gt;&lt;/A&gt;&amp;nbsp;process, but when I accessed the portal, the web browser yet shows me a warning.&lt;/P&gt;&lt;P&gt;Is there something more to do after importing the certificate and installing the policy? Any troubleshooting and workaround to follow?&lt;/P&gt;&lt;P&gt;Obs: The same certificate is be using by sslvpn and the sslvpn link works fine, without the warning.&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 16:29:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168248#M30436</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2023-01-18T16:29:23Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168251#M30437</link>
      <description>&lt;P&gt;Any screenshots of that warning?&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 16:42:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168251#M30437</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-01-18T16:42:05Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168275#M30440</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The warning is the default web browser not secure HTTPS. As if it doesn't have any certificate yet.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image_2023-01-18_180101930.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19178i6AAE987CACAFE259/image-size/large?v=v2&amp;amp;px=999" role="button" title="image_2023-01-18_180101930.png" alt="image_2023-01-18_180101930.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 21:01:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168275#M30440</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2023-01-18T21:01:12Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168302#M30444</link>
      <description>&lt;P&gt;Just assuming you have done basic checks regarding trusted root CA? I.e. you checked from it cert chain in browser and then compared root CA to your computer CA trust store or Firefox own cert store (depending your FF config)&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 06:40:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168302#M30444</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2023-01-19T06:40:55Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168342#M30451</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/11456"&gt;@Kaspars_Zibarts&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm not sure about this information. Like I said, the same certificate is be using in both portal, gaia and sslvpn.&lt;/P&gt;&lt;P&gt;When I access the sslvpn it works fine, but when I access the gaia portal in 8443 port this shows the warning on any web browser.&lt;/P&gt;&lt;P&gt;Look the print bellow.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cert.png" style="width: 818px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19184i4FC7724A7DA834C5/image-size/large?v=v2&amp;amp;px=999" role="button" title="cert.png" alt="cert.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nocert.png" style="width: 766px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19183i32896205E3BD34E9/image-size/large?v=v2&amp;amp;px=999" role="button" title="nocert.png" alt="nocert.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 12:08:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168342#M30451</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2023-01-19T12:08:24Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168419#M30462</link>
      <description>&lt;P&gt;Post screenshots of the "working" and "non-working" portal certificates.&lt;BR /&gt;After literally typing "thisisunsafe" on the warning screen (or clicking the various buttons to ignore the warning), click on the lock icon on the browser.&lt;/P&gt;
&lt;P&gt;I suspect the certificate is signed by one or more intermediate CAs.&lt;BR /&gt;In this case, you will need to include the entire certificate chain as part of the key you import.&lt;BR /&gt;More precisely, it means including the public key of all relevant CAs (root and intermediates).&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 17:55:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168419#M30462</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-19T17:55:05Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168469#M30482</link>
      <description>&lt;P&gt;You need to check certification chain in the browser first, i.e. in Chrome:&lt;/P&gt;
&lt;DIV id="tinyMceEditor_11cb00b9fef4aa3Kaspars_Zibarts_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 536px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19204i5407CF937DDDCBE4/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then check details for cert chain and see actual issuing root CA:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 561px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19202i2D4BDF577994A3DB/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Then compare it to your computer Root CA store:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 395px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19205i59BAD35DD2940C8E/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 967px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19206iF4C5EAD457D8E260/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Note that FF uses own trusted root CA store instead of windows OS, so you can google how to check that or else use Edge or Chrome&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 07:26:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168469#M30482</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2023-01-20T07:26:34Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168682#M30507</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/11456"&gt;@Kaspars_Zibarts&lt;/a&gt;&amp;nbsp;first of all, thank you very much for clarifying!&lt;/P&gt;&lt;P&gt;Look how it shows when I access the Gaia Portal via Chrome:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="https-e.png" style="width: 821px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19238iC47122F625B5FB94/image-size/large?v=v2&amp;amp;px=999" role="button" title="https-e.png" alt="https-e.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;It shows the internal interface IP in the certificate place.&lt;/P&gt;&lt;P&gt;Why it happens if I import&amp;nbsp;the certificate by SmartConsole the same way that the sslvpn was imported?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;bellow the sslvpn portal, works fine.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="https-ok.png" style="width: 744px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19239iE621AA90F92B4695/image-size/large?v=v2&amp;amp;px=999" role="button" title="https-ok.png" alt="https-ok.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 22 Jan 2023 20:36:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168682#M30507</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2023-01-22T20:36:40Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168711#M30511</link>
      <description>&lt;P&gt;You need to configure both - platform URL that matches name in the cert (or SAN list) plus import correct cert:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="image.png" style="width: 726px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19240i6EF1437B5B8DB847/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Jan 2023 10:00:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168711#M30511</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2023-01-23T10:00:02Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168937#M30543</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/11456"&gt;@Kaspars_Zibarts&lt;/a&gt;&amp;nbsp;the same certificate was imported for both portals, gaia and sslvpn.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="sslvpn.png" style="width: 657px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19280i9E60CFF03A92860D/image-size/large?v=v2&amp;amp;px=999" role="button" title="sslvpn.png" alt="sslvpn.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="portalcert.png" style="width: 636px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19281i6219E9D49E427CE2/image-size/large?v=v2&amp;amp;px=999" role="button" title="portalcert.png" alt="portalcert.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;but how we can see when I access Gaia portal the certificate shows the gateway IP interface on the "Certificate Hierarchy" of Chrome. I'm not sure why it happens&lt;/P&gt;</description>
      <pubDate>Tue, 24 Jan 2023 13:15:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/168937#M30543</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2023-01-24T13:15:20Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/169019#M30569</link>
      <description>&lt;P&gt;What's the details of the certificate that shows the IP address?&lt;BR /&gt;I suspect it's a different certificate than the one you uploaded.&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jan 2023 04:32:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/169019#M30569</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-25T04:32:59Z</dc:date>
    </item>
    <item>
      <title>Re: Gaia Portal Certificate Imported but not working</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/169321#M30648</link>
      <description>&lt;P&gt;What does the name in main URL field resolve to? Cluster IP or member IP?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ideally you want separate names for each cluster member and matching cert. Or all listed in SAN list in the same cert&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jan 2023 17:52:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gaia-Portal-Certificate-Imported-but-not-working/m-p/169321#M30648</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2023-01-26T17:52:49Z</dc:date>
    </item>
  </channel>
</rss>

